Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Threat Intelligence Analyst (CTIA)

Domain 7Objective 2

Threat Intelligence in SOC Operations, Incident Response, and Risk Management CTIA Practice Questions (Page 3)

Part of the Threat Hunting and Operational Integration domain, which makes up ~13% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–10 in this domain), expect 4–5 from this objective — we provide 55 practice questions to prepare you well beyond it. (estimate)

55questions here
11free pages
10concepts

Questions 11–15

  1. 11application · medium

    A SOC manager wants to measure whether threat intelligence is improving incident response times. Which metric is most appropriate?

    Select an answer first
  2. 12application · medium

    An organization has separate SOC, IR, and risk teams. A new threat intelligence report is published that is relevant to all three teams. What is the most effective way to ensure all teams use the intelligence consistently?

    Select an answer first
  3. 13expert · hard

    A risk manager is prioritizing remediation efforts across multiple assets. Threat intelligence indicates that one asset is highly likely to be targeted by a specific adversary, but the asset has low business criticality. Another asset has lower threat likelihood but is business-critical. The risk manager must decide which asset to remediate first. Which decision is most aligned with risk management principles?

    Select an answer first
  4. 14application · medium

    An organization has multiple threat intelligence feeds from different vendors. The SOC team notices that some indicators are conflicting (e.g., one feed labels an IP as malicious, another as clean). The team wants to establish a process for consuming and updating intelligence. Which process should be implemented first?

    Select an answer first
  5. 15foundation · easy

    Which of the following best illustrates the use of threat intelligence in a threat hunting scenario?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CTIA” is a trademark of its owner, used for identification only.